Open Source Security mailing list@oss_securityPatch
The tweet announces that five Django CVEs have been fixed, providing brief technical details for several of them and confirming patch availability.
CERT-PY@CERTpyGeneral
A brief tweet that lists two Django product CVEs and directs readers to a CERT page for further information, but it lacks additional technical details, patches, or exploitation evidence.
PulsePatch.io@pulsepatchioDisclosure
The post announces the high‑severity Django CVE‑2026‑3902 vulnerability that allows ASGI header spoofing through underscore/hyphen conflation and urges readers to review server configurations.
Infoflowcloud@infoflowcloudDisclosure
The tweet announces CVE-2026-3902, outlining affected software versions and the capability to spoof headers via ASGIRequest, without indicating an exploit, active exploitation, or mitigation.
CVE@CVEnewDisclosure
The text reports CVE‑2026‑3902 as a header‑spoofing issue in specific software versions, providing a brief technical description but offering no PoC, exploit code, or patch information.